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The Art Unit location of your application in the USPTO has changed. To aid in 
correlating any papers for this application, all further correspondence regarding this 
application should be directed to Art Unit 2617. 

DETAILED ACTION 

Response to Arguments 

1 . Applicant's arguments with respect to claims 1-11, 13-26 and 28-44 have been 
considered but are moot in view of the new ground(s) of rejection. 

Claim Rejections - 35 USC § 103 

2. The following is a quotation of 35 U.S.C. 103(a) which forms the basis for all 
obviousness rejections set forth in this Office action: 

(a) A patent may not be obtained though the invention is not identically disclosed or described as set 
forth in section 102 of this title, if the differences betvveen the subject matter sought to be patented and 
the prior art are such that the subject matter as a whole would have been obvious at the time the 
invention was made to a person having ordinary skill In the art to which said subject matter pertains. 
Patentability shall not be negatived by the manner in which the invention was made. 

3. Claims 1-9. 1 1, 13-20, 22-24. 26, 28-32, 34 and 40-44 are rejected under 35 
U.S.C. 103(a) as being unpatentable over Leivo et al (US 6,782,080) in view of Devine 
(US 7,039,611). 

Regarding claims 1, 13, 31 and 32. Leivo teaches a method for authenticating 
operation of a transceiver with a control station within a wireless remote identification 
system (seie Abstract and Title, see "authenticating" and see fig. 3. item 33), the method 
comprising: receiving transceiver configuration information including a network address 
(see column 7, lines 6-25, see "code") and transceiver authentication credentials (see 
column 7, lines 6-25, see "code"), receiving an authentication request from a control 
station within the remote identification system (see column 7, lines 6-25, see "request" 
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or "requested"), and transmitting the authentication response to the control station to 
allow the control station to determine if the transceiver is authorized to communicate 
within the remote identification system (see column 7, lines 6-25, see "response"). 

Leivo does not specifically disclose applying authentication processing to request 
information within the authentication request in conjunction with the transceiver 
authentication credentials to produce an authentication response. 

Devine teaches applying authentication processing to request information within 
the authentication request in conjunction with the transceiver authentication credentials 
to produce an authentication response (see column 7, lines 50-67).' 

Therefpre, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Devine into the system of Leivo 
in order to provide the card association assigns ability for fraudulent transaction cased 
upon a party's compliance with the authentication system (see Devine, Abstract). 
Regarding claims 2 and 17, Leivo further teaches i) a transceiver identification code 
uniquely assigned to the transceiver (see column 8, lines 32-47, see "code"), and 

ii) a transceiver instruction set containing a set of authentication values and 
corresponding authentication instructions (see column 7, lines 6-25). 

Regarding claims 3 and 18, Leivo further teaches periodically receiving 
replacement transceiver authentication credentials to replace the transceiver 
authentication credentials formerly received by the transceiver (see column 7, lines 6- 
25). 
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Regarding claims 4, 19 and 42, Leivo further teaches the request information 
within the authentication request includes: i) an request authentication result (see 
column 7, lines 6-25), and ii) a request data value (see column 7, lines 6-25, see 
"request"), wherein applying authentication processing to request information within the 
authentication request in conjunction with the transceiver authentication credentials to 
produce an authentication response (see column 7, lines 6-25, see "code") comprises: 
identifying an authentication instruction that matches the request authentication result 
(see column 7, lines 25-54), and applying the authentication instruction that matches the 
request authentication result to the request data value from the authentication request 
to produce the authentication response (see column 7, lines 25-54). 

Regarding claims 5, 20 and 43, Leivo further teaches applying an authentication 
function to authentication values in the set of authentication values within the 
transceiver authisntication credentials to produce corresponding transceiver 
authentication results (see column 7, lines 6-25), and for each transceiver 
authentication result produced, determining if the transceiver authentication result 
matches the request authentication result for that authentication value (see column 7, 
lines 6-25), and if the transceiver authentication result matches the request 
authentication result for that authentication value (see column 7, lines 6-25), performing 
the operation applying the authentication instruction to produce the authentication 
response (see column 7, lines 6-25). 

Regarding claims 7 and 22, Leivo further teaches applying the authentication 
instruction to the request data value in conjunction with the transceiver identification 
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code to obtain the authentication response (see column 7, lines 6-25 and see column 8, 
lines 32-48). 

Regarding claims 8 and 23, Leivo further teaches 1) an authentication 
acknowledgement is received from the control station indicating that the transceiver was 
successfully authenticated (see column 7, lines 6-25), and ii) a number of repeated 
attempts to authenticate the transceiver each fail (see column 7, lines 6-25). 

Regarding claims 9 and 24, Leivo further teaches i) a different request 
authentication result for use by the transceiver to select an authentication instruction 
(see column 8, lines 32-48), and ii) a different request data value for use by the 
transceiver during application of the selected authentication instruction (see column 8, 
lines 32-48). 

Regarding claims 1 1 and 26, Leivo further teaches performing an automatic 
download operation to receive the transceiver authentication credentials during trusted 
time period of operation of the transceiver (see column 8, lines 32-48). 

Regarding claims 14 and 29, Leivo selecting a transceiver authentication value 
from the transceiver authentication credentials (see column 7, lines 25-53 and column 
8, lines 32-48), and applying an authentication function to the transceiver authentication 
value to produce the request authentication result for use in the authentication request 
(see column 8, lines 32-48). 

Regarding claims 15 and 30, Leivo further teaches applying an authentication 
instruction corresponding to the selected transceiver authentication value to the request 
data value in conjunction with a transceiver identification code of the transceiver to 
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which the authentication request was provided in order to produce a control station 
response (see column 8, lines 32-48), and comparing the control station response to the 
authentication response answer within the authentication response to determine if they 
are equivalent, and if they are equivalent, indicating that the authentication response 
answer is valid (see column 8, lines 32-48). 

Regarding claims 16, 28 and 41, Leivo teaches a transceiver comprising: a 
memory (see column 3, lines 52-67, see "database"), a communications interface (see 
fig. 3, connection between devices), an interconnection mechanism coupling the 
memory (see column 3, lines 52-67, see "database"), the processor (see column 5, lines 
12-13, see "processing"), and the communications interface (see fig. 3, connection 
between devices), the memory encoded with an authentication process that when 
executed by the processor (see Abstract and Title, see "authenticating"), causes the 
transceiver authenticate operation of the transceiver with a control station within a 
wireless remote identification system by causing the transceiver to perform the 
operations of: receiving, via the communications interface, transceiver configuration 
information including a network address and transceiver authentication credentials (see 
column 7, lines 6-25, see "code" and see column 8, lines 32-48), receiving, via the 
communications interface, an authentication request from a control station within the 
remote identification system (see column 7, lines 6-25, see "request" or "requested"), 
and transmitting, via the communications interface, the authentication response to the 
control station to allow the control station to determine if the transceiver is authorized to 
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communicate within the remote identification system (see column 7, lines 6-25, see 
"response"). 

Leivo does not specifically disclose applying authentication processing to request 
information within the authentication request in conjunction with the transceiver 
authentication credentials to produce an authentication response. 

Devine teaches applying authentication processing to request information within 
the authentication request in conjunction with the transceiver authentication credentials 
to produce an authentication response (see column 7, lines 50-67). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Devine into the system of Leivo 
in order to provide the card association assigns ability for fraudulent transaction cased 
. upon a party's compliance with the authentication system (see Devine, Abstract). 

Regarding claims 34 and 44, Leivo further teaches maintaining a set of 
authentication instructions and corresponding authentication values generated by the 
transceiver, matching an authentication value received in the authentication request 
from the control station to a respective corresponding authentication value in the set 
(see column 7 lines 25-53 and see column 8, lines 32-48), identifying a corresponding 
authentication instruction associated with the corresponding authentication value in the 
set and applying the corresponding authentication instruction to a data value in the 
authentication request to produce the authentication response (see column 7 lines 25- 
53). . 
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Regarding claim 40, Leivo further teaclies applying authentication processing to 
request information within the authentication request in conjunction with the transceiver 
authentication credentials to produce an authentication response includes: based on 
information in the authentication request (see column 7, lines 6-25, see "request" or 
"requested"), identifying one of multiple authentication instructions maintained at the 
transceiver, and applying the identified one of multiple authentication instructions to i) a 
data value in the authentication request received from the control station and ii) an 
identification code associated with the transceiver to produce the authentication 
response (see column 7, lines 6-25, see "response"). 

4. Claims 6 and 21 are rejected under 35 U.S.C. 103(a) as being unpatentable over 
Leivo et al (US 6,782,080) in view of Phillips et al (US 6.721 .555). 

Regarding claims 6 and 21 . Leivo teaches claim 5. Leivo does not specifically 
disclose the request authentication result is a hash value result produced from a hash 
function within the control station and wherein the authentication function is an 
equivalent hash function within the transceiver and wherein the request authentication 
result is calculated by the control station using the hash function on a copy of the 
authentication values in the set of authentication values within the transceiver 
authentication credentials that is programmed into the control station. 

Phillips teaches the request authentication result is a hash value result produced 
from a hash function within the control station and wherein the authentication function is 
an equivalent hash function within the transceiver and wherein the request 
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authentication result is calculated by the control station using the hash function on a 
copy of the authentication values in the set of authentication values within the 
transceiver authentication credentials that is programmed into the control station (see 
Title and column 6, lines 5-28). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Phillips into the system of Leivo 
in order to provide a system for efficiently accommodating an authentication protocol in 
a communication network (see Phillips, Abstract). 

5. Claims 10 and 25 are rejected under 35 U.S.C. 103(a) as being unpatentable 
over Leivo et a! (US 6,782,080) in view of Bolle et a! (US 6,819,219). 

Regarding claims 10 and 25, Leivo teaches claim 1 . Leivo does not specifically 
disclose the transceiver is an RFID transceiver and wherein the control station operates 
an RFID management application. 

Bolle teaches the transceiver is an RFID transceiver and wherein the control 
station operates an RFID management application (see column 5, line 61 to column 6, 
line 4). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Bolle into the system of Leivo in 
order to provide a system for efficiently accommodating an authentication protocol in a 
communication network (see Phillips, Abstract). 
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6. Claims 33 and 35 are rejected under 35 U.S.C. 103(a) as being unpatentable 
over Leivo et al (US 6,782,080) in view of Boylan et al (US 2005/01 6609 1A1). 

Regarding claim 33, Leivo teaches the transceiver authentication credentials 
(see column 7, lines 6-25). Leivo does not specifically disclose the transceiver 
authentication credentials includes at least one of a roll fonA^ard and a roll back 
instruction and wherein a request data value in the authentication request from the 
control station indicates an amount by which to roll an instruction set associated with the 
transceiver. 

Boylan teaches the transceiver authentication credentials includes at least one of 
a roll foHA/ard and a roll back instruction and wherein a request data value in the 
authentication request from the control station Indicates an amount by which to roll an 
instruction set associated with the transceiver (see page 5, claim 12 and see page 3, 
[0067]). 

Therefore, It would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Boylan into the system of Leivo 
In order to provide a system to meet the demands of customers and hosting 
organizations for rapid change of business entities and real time performance (see 
Boylan, page 1, [0008]). 

Regarding claim 35, Leivo teaches maintaining a set of authentication 
instructions and corresponding authentication values generated by the transceiver (see 
Abstract and column 7, lines 6-25). Leivo does not specifically disclose and shifting a 
relationship position of the authentication instructions relative to the con'esponding 
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authentication values in the set by an amount specified by a data value in the 
authentication request such that, after shifting the relationship position, each 
corresponding authentication value in the set corresponds to a different authentication 
instruction than prior to shifting the relationship position of the authentication instruction. 

Boylan teaches shifting a relationship position of the authentication instructions 
relative to the corresponding authentication values in the set by an amount specified by 
a data value in the authentication request such that, after shifting the relationship 
position, each corresponding authentication value in the set corresponds to a different 
authentication instruction than prior to shifting the relationship position of the 
authentication instruction (see page 5, claim 12 and see page 3, [0067]). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Boylan into the system of Leivo 
in order to provide a system to meet the demands of customers and hosting 
organizations for rapid change of business entities and real time performance (see 
Boylan, page 1, [0008]). 

7. Claims 36-39 are rejected under 35 U.S.C. 103(a) as being unpatentable over 
Leivo et al (US 6,782.080) in view of Carroll et al (US 6,611, 91 3). 

Regarding claim 36, Leivo teaches the transceiver authentication credentials 
(see Abstract and column 7, lines 6-25). Leivo does not specifically disclose receiving a 
first alphanumeric value and a corresponding first instruction, receiving a second 
alphanumeric value and a corresponding second instruction, and maintaining the first 
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alphanumeric value and the corresponding first instruction at the transceiver as a first 
value-instruction pair, maintaining the second alphanumeric value and the 
corresponding second instruction at the transceiver as a second value-instruction pair. 

Carroll teachers receiving a first alphanumeric value and a corresponding first 
instruction, receiving a second alphanumeric value and a corresponding second 
instruction, and maintaining the first alphanumeric value and the corresponding first 
instruction at the transceiver as a first value-instruction pair, maintaining the second 
alphanumeric value and the corresponding second instruction at the transceiver as a 
second value-instruction pair (see column 14, lines 29-36). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Carroll into the system of Leivo 
in order to provide an embedded private-key algorithm to ensure proper authentication 
key transfer (see Carroll, Abstract). 

Regarding claim 37, Leivo teaches the transceiver authentication credentials 
(see Abstract and column 7, lines 6-25). Leivo does not specifically applying the 
authentication processing at the transceiver to the first alphanumeric value to generate 
a first transceiver generated result associated with the first alphanumeric value and the 
corresponding first instruction, applying the authentication processing at the transceiver 
to the second alphanumeric value to generate a second transceiver generated result 
associated with the second alphanumeric value and the corresponding second 
instruction, maintaining the first transceiver generated result along with the first value- 
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instruction pair, and maintaining the second transceiver generated result along with the 
second value-instruction pair. 

Carroll teachers applying the authentication processing at the transceiver to the 
first alphanumeric value to generate a first transceiver generated result associated with 
the first alphanumeric value and the corresponding first instruction, applying the 
authentication processing at the transceiver to the second alphanumeric value to 
generate a second transceiver generated result associated with the second 
alphanumeric value and the corresponding second insitruction, maintaining the first 
transceiver generated result along with the first value-instruction pair, and niaintaining 
the second transceiver generated result along with the second value-instruction pair 
(see column 14, lines 29-36). 

Therefore, it would have been obvious to one of ordinary skill in the art at the 
time the invention was made to provide the teaching of Canroll into the system of Leivo 
in order to provide an embedded private-key algorithm to ensure proper authentication 
key transfer (see Canroll, Abstract). 

Regarding claim 38, Leivo further teaches identifying an authentication value in 
the authentication request received from the control station, matching the authentication 
value in the authentication request to one of the first transceiver generated result and 
the second transceiver generated result (see Abstract and column 7, lines 6-25), and if 
the authentication value in the authentication request received from the control station 
matches the first transceiver generated result, utilizing the corresponding first instruction 
to generate a response to the control station (see Abstract and column 7, lines 6-25 and 
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see column 8, lines 32-48), and if the authentication value in the authentication request 
received from the control station matches the second transceiver generated result, 
utilizing the corresponding second instruction to generate a response to the control 
station (see Abstract and column 7, lines 6-25). 

Regarding claim 39, Leivo further teaches identifying an authentication value in 
the authentication request received from the control station (see Abstract and column 7, 
lines 6-25), attempting to match the authentication value in the authentication request to 
one of the first transceiver generated result and the second transceiver generated result 
(see column 7, lines 6-25 and column 8, lines 32-48), and if the authentication value in 
the authentication request received from the control station does not match either of the 
first and second transceiver generated result (see Abstract and column 7, lines 6-25), 
failing authentication of the transceiver (see Abstract, column 7, lines 6-25 and column 
8, lines 32-48). 

Allowable Subject Matter 
8. Claims 12 and 27 are objected to as being dependent upon a rejected base 
claim, but would be allowable if rewritten in independent form including all of the 
limitations of the base claim and any intervening claims. 

Regarding claims 12 and 27, claims 12 and 27 are objected for the reasons as 
stated in the Office action page 9 (dated 1 1/02/05). 
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Conclusion 

9. Any inquiry concerning this communication or earlier communications from tlie 
examiner should be directed to Nghi H. Ly whose telephone number is (571) 272-791 1 . 
The examiner can normally be reached on 8:30 am-5:30 pm Monday-Friday. 

If attempts to reach the examiner by telephone are unsuccessful, the examiner's 
supervisor, Charles Appiah can be reached on (571) 272-7904. The fax phone number 
for the organization where this application or proceeding is assigned is 571-273-8300. 

Information regarding the status of an application may be obtained from the 
Patent Application Information Retrieval (PAIR) system. Status infonnation for 
published applications may be obtained from either Private PAIR or Public PAIR. 
Status information for unpublished applications is available through Private PAIR only. 
For more information about the PAIR system, see http://pair-direct.uspto.gov. Should 
you have questions on access to the Private PAIR system, contact the Electronic 
Business Center (EBC) at 866-217-9197 (toll-free). If you would like assistance from a 
USPTO Customer Service Representative or access to the automated information 
system, call 800-786-91 99 (IN USA OR CANADA) or 571 -272-1 000. 



Nghi H. Ly 



